Maintaining security and timeliness in real-time database system

被引:17
作者
Ahmed, QN
Vrbsky, SV
机构
[1] Univ Alabama, Dept Comp Sci, Tuscaloosa, AL 35487 USA
[2] Lucent Technol, Middletown, NJ 07748 USA
关键词
concurrency control; covert channel; multilevel security; real-time databases;
D O I
10.1016/S0164-1212(01)00111-X
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Real-time database systems can have security constraints in addition to timing constraints. Such real-time systems are typically contained in environments that exhibit hierarchical propagation of information. where mandatory access control for security is required. Conventional multilevel secure (MLS) database models that implement mandatory access control are inadequate for time-critical applications and conventional real-time database models do not address security constraints, The objective of this work is to incorporate security constraints in real-time database systems in such a way that not only is security achieved, but achieving security does not degrade real-time performance significantly in terms of deadlines missed. We present two concurrency control algorithms for secure real-time databases: the Secure two-phase locking high priority (2PLHP) algorithm is based on a two-phase locking protocol and the Secure optimistic concurrency control (OPT) algorithm uses the properties of an optimistic concurrency protocol. We implement the two algorithms and study their performance using a real-time database system simulation model. Our study covers both soft and firm real-time databases. Results show that both the algorithms perform fairly well in terms of security and timeliness compared to non-secure algorithms. We show that achieving increased security does not necessarily mean an increased sacrifice in real-time performance. (C) 2002 Elsevier Science Inc. All rights reserved.
引用
收藏
页码:15 / 29
页数:15
相关论文
共 28 条
[1]   SCHEDULING REAL-TIME TRANSACTIONS - A PERFORMANCE EVALUATION [J].
ABBOTT, RK ;
GARCIAMOLINA, H .
ACM TRANSACTIONS ON DATABASE SYSTEMS, 1992, 17 (03) :513-560
[2]  
ADELBERG B, 1995, P 1995 ACM SIGMOD, P245
[3]   Maintaining security in firm real-time database systems [J].
Ahmed, QN ;
Vrbsky, SV .
14TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE, PROCEEDINGS, 1998, :83-90
[4]  
AHMED QN, 1998, P ACMSE C, P297
[5]  
AHMED QN, 1998, P IFIP 2 ANN WORK C, P255
[6]  
Baruah SK, 1997, KLUW REAL T, P3
[7]  
BELL D, 1974, SECURE COMPUTER SYST
[8]  
BESTAVROS A, 1996, SIGMOD REC, V25, P2
[9]  
CASTANO S, 1994, DATABASE SECURITY
[10]  
CHEN F, 1995, P IEEE S SECUR PRIV, P128, DOI 10.1109/SECPRI.1995.398928